Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-4691. PoCs published by Moudi.
AI-analyzed exploit summary This exploit demonstrates an SQL injection vulnerability in Classified Linktrader Script by injecting a UNION-based SQL query to retrieve the database version. The attack is performed via a crafted URL with unsanitized input in the 'slctCategories' parameter.
Description
SQL injection vulnerability in addlink.php in Classified Linktrader Script allows remote attackers to execute arbitrary SQL commands via the slctCategories parameter.
Exploits (1)
This exploit demonstrates an SQL injection vulnerability in Classified Linktrader Script by injecting a UNION-based SQL query to retrieve the database version. The attack is performed via a crafted URL with unsanitized input in the 'slctCategories' parameter.